Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Restrict delegated developers read access [Updated in Security Center 1.3]

If com.glide.dd_allow_global_access_tables does not contain the recommended value of wf_activity, wf_activity_definition, wf_workflow, wf_workflow_version, sp_portal, sp_widget, and sp_page, then those tables could be read by a delegated developer. This could provide the delegated developer read access to sensitive information.

More information

AttributeDescription
Property namecom.glide.dd_allow_global_access_tables
Configuration typeSystem Properties \(/sys\_properties\_list.do\)
Data typestring
Recommended valuewf\_activity, wf\_activity\_definition, wf\_workflow, wf\_workflow\_version, sp\_portal, sp\_widget, sp\_page
Default valuewf\_activity, wf\_activity\_definition, wf\_workflow, wf\_workflow\_version, sp\_portal, sp\_widget, sp\_page
CategoryAccess control
Security risk
  • Severity score: 2.7
  • CVSS score: Low
  • Security risk details: Ensure that com.glide.dd_allow_global_access_tables is set to wf_activity, wf_activity_definition, wf_workflow, wf_workflow_version, sp_portal, sp_widget, sp_page.

Parent Topic:Access control